Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Seems Chrome is specifically making an exception for custom root CAs though:

> This will only apply to TLS server certificates from CAs that are trusted in a default installation of Google Chrome, commonly known as “publicly trusted CAs”, and will not apply to locally-operated CAs that have been manually configured.



Looking into it further, that's actually Apple's policy as well.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: